arrow_back View All Dates
9:00am • Welcome & Opening Remarks - Stacey Potter, Community Manager - OpenSSF, The Linux Foundation
9:15am • Keynote: Securing the Agentic Future: How OpenSSF is Leading the AI Security Transition - Steven Fernandez, OpenSSF Managing Director, The Linux Foundation
9:40am • Keynote: Anatomy of a Phishing Campaign - Mike Fiedler, Python Software Foundation
10:05am • Keynote: BEAR-ing Fruit: A Year of Learning, Mentorship, and Community Building in Open Source Security - Marcela Melara, Research Scientist, Intel Corporation
10:25am • The Architecture of Accountability: Transparency in Software - Hayden Blauzvern, Google
11:00am • OpenSSF Baseline Alignment in Open Source Repos: Automation, Surveys, and the Visibility Gap - Will Sergeant, Kiran Chana & Kavoi Mutisya, Harvard
11:20am • Curating Secure Software: The Art of Selecting Safe Dependencies - Kadi McKean, ReversingLabs
11:40am • Enforcing the OpenSSF Ecosystem With AMPEL - Adolfo García Veytia, Carabiner Systems
12:05pm • From SBOMs To Decisions: Prioritizing Supply Chain Risk in Time-Bound M&A Reviews - Prashanth Chandrasekar, Bitsea US, Inc.
12:25pm • Gemara: The GRC Architecture You Didn’t Know You Built - Hannah Braswell & Jennifer Power, Red Hat
1:45pm • Making a Lockfile for Maven - Adam Kaplan, Red Hat
2:00pm • Beyond Keyless Signing: Using Ephemeral Certificates With BYOPKI - Kenneth Yang & Adrian Smith, Coinbase
2:25pm • GAME SHOW! GAME SHOW! - Christopher Robinson, OpenSSF
2:50pm • Navigating the Land of Git Commit Signatures With Gittuf - Patrick Zielinski, Secure Systems Lab @ NYU & Yongjae Chung, New York University
3:10pm • Petra: SBOMs Without Oversharing for Confidential Supply Chain Transparency - Eman Abu Ishgair, Purdue University & Marcela Melara, Intel Corporation
3:45pm • Verification Toward Applying SLSA in Automotive IVI Software Development - Yuta Kiyoumi & Takashi Ninjouji, Honda Motor Co., Ltd.
4:05pm • What Are Web Developers Doing About Security? - Daniel Appelquist, Samsung
4:20pm • Quantum Proofing Sigstore: A Tale of Three Approaches - Kevin Conner, Red Hat
4:45pm • AI as Security Orchestrator: An Introduction To Darnit - Michael Lieberman, Kusari
5:05pm • Keynote: OSS-CRS: Next Generation Bug-Finding and Remediation for the LLM Era - Andrew Chin, Georgia Institute of Technology
5:25pm • Closing Remarks